Commit Graph

78795 Commits

Author SHA1 Message Date
jenkins-metasploit 8528cb255a automatic module_metadata_base.json update 2025-10-24 16:27:34 +00:00
Brendan d1c9410a95 Merge pull request #20594 from HamzaSahin61/feat/redoc-exposed-scanner
auxiliary(scanner/http/redoc_exposed): detect exposed ReDoc API docs UI
2025-10-24 11:19:13 -05:00
jenkins-metasploit 5d73d8a2c7 Bump version of framework to 6.4.96 2025-10-24 14:56:49 +00:00
adfoster-r7 52308d0df6 Merge pull request #20655 from adfoster-r7/fix-meterpreter-migration-crash
Fix Meterpreter migration crash
6.4.95
2025-10-24 14:39:21 +01:00
jenkins-metasploit c4dd66723f automatic module_metadata_base.json update 2025-10-24 13:38:10 +00:00
msutovsky-r7 d8357ce329 Land #20564, adds persistence suggester module
persistence suggester
2025-10-24 15:29:54 +02:00
adfoster-r7 a984e15cb6 Fix Meterpreter migration crash 2025-10-24 14:07:59 +01:00
adfoster-r7 4dd245a60e Merge pull request #20639 from adfoster-r7/fix-oracle-login-crash
Fix oracle login crash
2025-10-24 14:06:59 +01:00
adfoster-r7 a5dd6c37ff Merge pull request #20654 from molecula2788/msf_session_bootstrap_fix
lib/msf/base/sessions/meterpreter.rb: Use &. across the entire chain when handling datastore['AutoLoadExtensions']
2025-10-24 13:43:04 +01:00
Adrian Șendroiu c2ce203281 lib/msf/base/sessions/meterpreter.rb: Use &. across the entire chain when handling datastore['AutoLoadExtensions'] 2025-10-24 14:30:56 +03:00
dwelch-r7 1ee88e1a7a Merge pull request #20651 from adfoster-r7/pin-rexml-to-avoid-winrm-warnings
Pin rexml to avoid winrm warnings
2025-10-24 11:14:53 +01:00
dwelch-r7 7303e78f4a Merge pull request #20652 from adfoster-r7/fix-ssh-login-crash-for-pro
Fix ssh login crash for pro
2025-10-24 11:14:07 +01:00
adfoster-r7 25772a5a64 Fix ssh login crash for pro 2025-10-24 10:31:27 +01:00
adfoster-r7 8d35eb975d Pin rexml to avoid winrm warnings 2025-10-24 10:29:00 +01:00
jenkins-metasploit 909d872cf6 automatic module_metadata_base.json update 2025-10-23 16:52:30 +00:00
jheysel-r7 4bc06606ff Merge pull request #20640 from msutovsky-r7/fix/ldap/cert_finder/register_values
Adds safe navigator in ldap_esc_vulnerable_cert_finder
2025-10-23 09:44:17 -07:00
adfoster-r7 52f2094ccb Merge pull request #20641 from rapid7/smcintyre-r7-patch-1
Update contact emails in CODE_OF_CONDUCT.md
2025-10-23 15:01:47 +01:00
Spencer McIntyre c41c0c882b Update contact emails in CODE_OF_CONDUCT.md
Updated contact emails for reporting unacceptable behavior.
2025-10-23 09:15:15 -04:00
Martin Sutovsky 3c11db422a Adds safe navigation operator 2025-10-23 14:41:18 +02:00
Martin Sutovsky 51e3a2d0c5 Changes return value from nil to [] in enum_registry_values 2025-10-23 13:53:57 +02:00
adfoster-r7 b2d1095d22 Fix oracle login crash 2025-10-23 10:30:57 +01:00
HamzaSahin61 e17b2a0598 Remove 'How It Works' section from redoc_exposed.md
Removed the 'How It Works' section detailing the probing process for REDOC.
2025-10-23 01:45:38 +03:00
HamzaSahin61 9640152f25 Update redoc_exposed.md 2025-10-23 01:31:09 +03:00
jenkins-metasploit c20dd4a278 automatic module_metadata_base.json update 2025-10-22 12:35:53 +00:00
adfoster-r7 f24552cdfd Merge pull request #20632 from h00die/linqpad_cleanup
Linqpad cleanup
2025-10-22 13:23:32 +01:00
adfoster-r7 1e1355bc7b Merge pull request #20636 from sjanusz-r7/anemone-infinite-recursion-fix
Infinite recursion on error page fix for Anemone
2025-10-22 11:35:19 +01:00
sjanusz-r7 fa6abd6011 Infinite recursion on error page fix for Anemone 2025-10-22 11:15:58 +01:00
jenkins-metasploit 546d17e032 automatic module_metadata_base.json update 2025-10-22 07:36:35 +00:00
msutovsky-r7 e5ee4d5384 Land #20630, adds authenticated RCE module for Vvveb CMS (CVE-2025-8518)
Add Vvveb CMS Authenticated RCE (CVE-2025-8518)
2025-10-22 09:27:59 +02:00
HamzaSahin61 49c1481687 Update redoc_exposed.md 2025-10-22 02:04:27 +03:00
jenkins-metasploit 7a9f24dc29 automatic module_metadata_base.json update 2025-10-21 16:37:11 +00:00
adfoster-r7 306ee8454b Merge pull request #20633 from Chocapikk/typo-freepbx
easy-fix: Fix typo in modules/exploits/unix/http/freepbx_unauth_sqli_to_rce
2025-10-21 17:28:49 +01:00
Maksim Rogov ff73363159 Update modules/exploits/multi/http/vvveb_auth_rce_cve_2025_8518.rb
Co-authored-by: msutovsky-r7 <martin_sutovsky@rapid7.com>
2025-10-21 19:10:16 +03:00
vognik 45a87eaaca small fixes 2025-10-20 09:41:48 -07:00
vognik 74c7f98ad9 code review changes from @msutovsky-r7 2025-10-20 09:00:24 -07:00
Valentin Lobstein 97b58f9372 easy-fix: Fix typo in modules/exploits/unix/http/freepbx_unauth_sqli_to_rce 2025-10-20 14:29:19 +02:00
h00die 8490ce844d linqpad persistence cleanup 2025-10-19 10:08:33 -04:00
h00die ef9300870a linqpad persistence cleanup 2025-10-19 10:05:48 -04:00
h00die 287cba7436 linqpad persistence cleanup 2025-10-19 10:05:36 -04:00
vognik 9ad83f6454 Add Vvveb CMS Authenticated RCE (CVE-2025-8518) 2025-10-18 17:12:05 -07:00
adfoster-r7 52f07b6820 Merge pull request #20627 from h00die/fix_post_docs_options
Update post docs to use modern h3 for options instead of original spec (bold)
2025-10-17 21:09:59 +01:00
adfoster-r7 664c9559d1 Merge pull request #20629 from h00die/no_4_space_options
Clean up 2 aux docs
2025-10-17 21:06:31 +01:00
h00die c86aefa328 remove 4 space indents in options 2025-10-16 19:34:39 -04:00
h00die 976c208414 remove 4 space indents in options 2025-10-16 19:31:50 -04:00
jheysel-r7 2d5f10d965 Merge pull request #20626 from h00die/fix_payload_docs_options
Update payload docs to use modern h3 for options instead of original spec (bold)
2025-10-16 08:42:07 -07:00
jenkins-metasploit a059f239c9 automatic module_metadata_base.json update 2025-10-16 14:48:42 +00:00
Diego Ledda 644bcfabbb Merge pull request #20522 from h00die/modern_persistence_sysvinit
update systemvinit to persistence mixin
2025-10-16 16:35:16 +02:00
jenkins-metasploit 5c3b9480bb Bump version of framework to 6.4.95 2025-10-16 11:06:34 +00:00
jenkins-metasploit f271212ab0 Bump version of framework to 6.4.94 6.4.94 2025-10-16 09:42:01 +00:00
h00die 40f3d4b72e fix doc options bold to h3 2025-10-15 16:38:17 -04:00